Talent.com
Senior Cybersecurity Engineer

Senior Cybersecurity Engineer

Bio, Inc.Redwood City, CA, United States
25 days ago
Job type
  • Full-time
Job description

Overview

The Role : At Q Bio, we are transforming healthcare by combining AI, Physics, and Biology to automate the physical exam, making preventive, personalized care accessible to all. We are hiring a Senior Cybersecurity Engineer to join our dynamic team, focusing on embedding security throughout our product lifecycle. You will be instrumental in designing, building, automating, and maintaining the secure deployment and monitoring of our cutting-edge products.

$170,000 - $200,000 a year

What You Will Do

  • Product & Medical Device Security (FDA Regulated Environment) : Secure Software Development Lifecycle (SDLC) : Integrate security best practices and tools into every phase of the product development lifecycle, from design and requirements to coding, testing, and deployment.
  • Threat Modeling & Risk Analysis : Lead and perform threat modeling and security risk analysis (per ISO 14971) for new and existing medical device software.
  • FDA & Regulatory Compliance : Author, review, and own all cybersecurity-related documentation for regulatory submissions (e.g., FDA 510(k) pre-market and post-market management plans). Ensure our products and processes align with the latest FDA guidance, IEC 62304, and other relevant medical device security standards.
  • Regulatory Interface : Serve as the primary cybersecurity subject matter expert (SME) for regulatory interactions, including responding to questions during FDA submissions and representing the company's cybersecurity posture during audits.
  • Security Requirements Definition : Partner with Product Management, Engineering, and Quality teams to define and document security requirements, controls, and architecture for our medical device platforms.
  • Vulnerability Management & Penetration Testing : Manage and coordinate third-party penetration testing and internal vulnerability assessments of our products. Develop and oversee the remediation action plan.
  • Incident Response : Develop, implement, and maintain an incident response plan for product-related security events, including vulnerability disclosure policies.
  • Corporate Security & Compliance :
  • Continuous Security Assessment & Strategy : Continuously assess the company's security posture against evolving business needs and emerging threats. Identify relevant security standards (e.g., SOC 2, HIPAA, NIST CSF), perform regular gap analyses, and own the strategic roadmap for assessment, implementation, and improvement.
  • Compliance Frameworks (SOC 2 / HIPAA) : Lead the initiative to achieve and maintain SOC 2 certification for our platform and business operations. Develop and manage the security controls and policies required for SOC 2 and HIPAA Security Rule compliance.
  • Corporate Security Governance : Develop, implement, and enforce company-wide information security policies, procedures, and standards.
  • IT & Cloud Security : Conduct security architecture reviews and risk assessments of our corporate IT and cloud infrastructure (AWS / GCP / Azure). Implement and manage security controls to protect corporate data and systems.
  • Vendor & Third-Party Risk Management : Establish and manage a program to assess and monitor the security posture of third-party vendors and partners.
  • Identity & Access Management (IAM) : Oversee and improve the company's IAM policies and solutions to ensure the principle of least privilege is maintained.

What You Will Bring

  • 5+ years of experience in cybersecurity, with at least 3-5 years in a hands-on, senior or lead role.
  • Proven experience in a regulated industry, with a strong preference for MedTech (medical devices), HealthTech, or Life Sciences.
  • FDA Expertise : Demonstrated, hands-on experience with FDA cybersecurity guidance for medical devices, contributing to the cybersecurity sections of regulatory submissions (e.g., 510(k), PMA), and acting as a subject matter expert in direct interactions with regulatory bodies (e.g., responding to submission questions, participating in audits).
  • Compliance Expertise : Direct experience leading or playing a primary role in achieving and maintaining SOC 2 and / or HIPAA compliance.
  • Product Security : Strong experience with application security, secure SDLC practices, threat modeling (e.g., STRIDE), and vulnerability management for software products.
  • Cloud Security : Deep knowledge of securing cloud environments and services (AWS, GCP, or Azure).
  • Technical Skills : Proficiency with security assessment tools, IAM systems, endpoint protection, and network security concepts.
  • Bachelor's degree in Computer Science, Information Security, or a related field.
  • Relevant professional certifications are highly desirable (e.g., CISSP, CISM, HCISPP, CSSLP).
  • #J-18808-Ljbffr

    Create a job alert for this search

    Senior Cybersecurity Engineer • Redwood City, CA, United States

    Related jobs
    • Promoted
    Cybersecurity Engineer

    Cybersecurity Engineer

    Tari Labs, LLC.Palo Alto, CA, United States
    Full-time
    Istari is a digital engineering software company enabling our customers to turn the physical world into the digital to accomplish their specific mission or business objectives.Istari was founded wi...Show moreLast updated: 1 day ago
    • Promoted
    Cryptography Engineer

    Cryptography Engineer

    RenegadeSan Francisco, CA, United States
    Full-time
    Renegade is building an unstoppable network for the anonymous exchange of value.Our core permissionless protocol, the Renegade dark pool, solves many problems in current decentralized exchange desi...Show moreLast updated: 3 days ago
    • Promoted
    Senior Security Engineer

    Senior Security Engineer

    SysdigSan Francisco, CA, United States
    Full-time
    At Sysdig, we believe cloud security isn't a compromise - it's a promise.From the start, our mission has been clear : to help organizations secure innovation in the cloud, the right way.We created F...Show moreLast updated: 3 days ago
    • Promoted
    Senior Offensive Security Engineer

    Senior Offensive Security Engineer

    ChimeSan Francisco, CA, United States
    Full-time
    We are seeking a Senior Security Engineer to build and lead our Offensive Security program.In this role, you will attack Chime's services, applications, and infrastructure to discover security issu...Show moreLast updated: 3 days ago
    • Promoted
    Senior Cybersecurity Engineer

    Senior Cybersecurity Engineer

    Elios TalentSan Francisco, CA, United States
    Full-time
    We are seeking a Senior Cybersecurity Engineer to design and manage advanced security systems that protect critical infrastructure. You will lead initiatives in threat detection, incident response, ...Show moreLast updated: 4 days ago
    • Promoted
    CyberArk Engineer

    CyberArk Engineer

    Tata Consultancy ServicesSan Ramon, CA, United States
    Full-time
    Job Title : CyberArk Engineer Experience Required - 6+ Years.Must Have Technical / Functional Skills.Job Summary : Design, Development and maintenance of CyberArk solutions to manage and secure privil...Show moreLast updated: 3 days ago
    • Promoted
    Cybersecurity Manager

    Cybersecurity Manager

    Bay Area Air Quality Management DistrictSan Francisco, CA, United States
    Full-time
    Information Services Operations.The Bay Area Air Quality Management District (Air District) is a regional government agency. The District's statutory mandate is to regulate stationary sources of air...Show moreLast updated: 3 days ago
    • Promoted
    Senior Staff Engineer - Cybersecurity Operations

    Senior Staff Engineer - Cybersecurity Operations

    ExelixisAlameda, CA, United States
    Full-time
    Join our highly skilled and rapidly growing cybersecurity team as a Senior Staff Engineer.In this role, you will be at the forefront of our cybersecurity operations, focusing on threat detection, i...Show moreLast updated: 30+ days ago
    • Promoted
    Cybersecurity Manager

    Cybersecurity Manager

    Mattson TechnologyFremont, CA, United States
    Full-time
    Mattson Technology is a global company with nearly 30 years of experience delivering leading-edge technology and products in the Dry Strip, Plasma and Thermal markets to our customers.While we cons...Show moreLast updated: 3 days ago
    • Promoted
    Cybersecurity Engineer - Firewall with DLP

    Cybersecurity Engineer - Firewall with DLP

    Lam ResearchFremont, CA, United States
    Full-time
    Group is dedicated to the success of Lam through providing best-in-class and innovative information system solutions and services. Together, we support users globally with data, information, and sys...Show moreLast updated: 2 days ago
    • Promoted
    Cryptography Engineer

    Cryptography Engineer

    ParadigmSan Francisco, CA, United States
    Full-time
    Renegade is building an unstoppable network for the anonymous exchange of value.Our core permissionless protocol, the Renegade dark pool, solves many problems in current decentralized exchange desi...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Staff Engineer (Crypto / Web3) - Dragonfly Portfolio

    Senior Staff Engineer (Crypto / Web3) - Dragonfly Portfolio

    P2PSan Francisco, CA, United States
    Full-time
    Senior Staff Engineer (Crypto / Web3) - Dragonfly Portfolio.Dragonfly is a crypto-native Venture Capital and research firm with $2B+ in assets under management and 160+ portfolio companies.Our Talent...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Cyber Security Engineer

    Senior Cyber Security Engineer

    Cloud Software Group, Inc.San Ramon, CA, United States
    Full-time
    Analyze and investigate activity on company devices and infrastructure (Public Cloud & on-premise) that could represent a security threat. Work cross-functionally with the Security teams to develop ...Show moreLast updated: 22 days ago
    • Promoted
    Senior Cryptographic Public Key Infrastructure (PKI) Manager (Remote Eligible)

    Senior Cryptographic Public Key Infrastructure (PKI) Manager (Remote Eligible)

    Capital OneSan Jose, CA, US
    Remote
    Full-time +1
    Senior Cryptographic Public Key Infrastructure (PKI) Manager (Remote Eligible).Capital One is seeking a Cyber Senior Manager to help deliver game-changing cybersecurity solutions based on threat, d...Show moreLast updated: 30+ days ago
    • Promoted
    Senior CyberArk Engineer - Remote

    Senior CyberArk Engineer - Remote

    EPAM Systems IncSan Jose, CA, United States
    Remote
    Full-time
    Endpoint Privileged Management.Expertise in Endpoint Privileged Management tools is essential for this role.In this advanced position, you will work to elevate the organization's security posture w...Show moreLast updated: 3 days ago
    • Promoted
    Senior Security Engineer

    Senior Security Engineer

    LHHAlameda, CA, United States
    Full-time
    This role is hands-on and strategic, focused on enhancing detection capabilities, automating response workflows, and driving continuous improvement across cybersecurity operations.Lead end-to-end t...Show moreLast updated: 2 days ago
    • Promoted
    Senior Cryptography Engineer

    Senior Cryptography Engineer

    ParadigmSan Francisco, CA, United States
    Full-time
    At Succinct, our mission is to empower developers to use zero-knowledge proofs to create the next-generation of blockchain applications. We work with some of the best teams in the space to develop p...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Security Engineer

    Senior Security Engineer

    NavanPalo Alto, CA, United States
    Full-time
    We are seeking a Senior Corporate Security Engineer to join our team.This role is integral to ensuring the security of our corporate environment across all devices, applications, and networks.The i...Show moreLast updated: 3 days ago